First published: Mon Mar 04 2024(Updated: )
Customer Support System v1 was discovered to contain a SQL injection vulnerability via the email parameter at /customer_support/ajax.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Customer Support System | =1.0 | |
Unknown Customer Support System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-49546 has a medium severity rating due to its potential to allow SQL injection attacks.
To fix CVE-2023-49546, sanitize and validate all user inputs, especially the email parameter in the /customer_support/ajax.php file.
CVE-2023-49546 affects Customer Support System version 1.0.
Yes, CVE-2023-49546 can lead to unauthorized access to sensitive data due to SQL injection vulnerabilities.
The specific individual or entity that disclosed CVE-2023-49546 is not mentioned in the available resources.